Does the term "novel attack" resonate with security teams? or does "unknown attack" resonate better? What would you consider novel/unknown attacks? Does your current threat detection solution detect novel/unknown attacks?

4.3k viewscircle icon1 Upvotecircle icon3 Comments
Sort by:
Director of Information Security in Services (non-Government)2 years ago

Novel attack resonates more. These attacks may include multiple stages and exploit vulnerabilities to perform an EDR bypass, C2, or ransomware. 

Lightbulb on1
CISO in Software2 years ago

I always think of 0-day vulns and associated attacks as novel.

CISO (CISO) in Healthcare and Biotech2 years ago

Novel attack certainly resonates more. Unknown attacks are only unknown until forensics figure it out.  A robust incident detection and response system (SIEM, UEBA, XDR) should be able to detect unusual activity and let your SOC investigate. them.

Content you might like

Lack of mature vendor solutions54%

Trust in AI accuracy68%

Budget constraints18%

Skills to operate the tools29%

View Results

Inadequate work-life balance32%

Lack of practicing self-care45%

Shortage of staff and resources55%

Keeping up with an influx of threats/alerts/incidents46%

Pressure from colleagues and management29%

Work culture that prevents open and honest conversations14%

Other – comment below

View Results